[El-errata] ELSA-2017-0987 Important: Oracle Linux 7 qemu-kvm security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Apr 18 07:59:11 PDT 2017


Oracle Linux Security Advisory ELSA-2017-0987

http://linux.oracle.com/errata/ELSA-2017-0987.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
qemu-img-1.5.3-126.el7_3.6.x86_64.rpm
qemu-kvm-1.5.3-126.el7_3.6.x86_64.rpm
qemu-kvm-common-1.5.3-126.el7_3.6.x86_64.rpm
qemu-kvm-tools-1.5.3-126.el7_3.6.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/qemu-kvm-1.5.3-126.el7_3.6.src.rpm



Description of changes:

[1.5.3-126.el7_3.6]
- kvm-fix-cirrus_vga-fix-OOB-read-case-qemu-Segmentation-f.patch 
[bz#1430059]
- kvm-cirrus-vnc-zap-bitblit-support-from-console-code.patch [bz#1430059]
- kvm-cirrus-add-option-to-disable-blitter.patch [bz#1430059]
- kvm-cirrus-fix-cirrus_invalidate_region.patch [bz#1430059]
- kvm-cirrus-stop-passing-around-dst-pointers-in-the-blitt.patch 
[bz#1430059]
- kvm-cirrus-stop-passing-around-src-pointers-in-the-blitt.patch 
[bz#1430059]
- kvm-cirrus-fix-off-by-one-in-cirrus_bitblt_rop_bkwd_tran.patch 
[bz#1430059]
- Resolves: bz#1430059
   (CVE-2016-9603 qemu-kvm: Qemu: cirrus: heap buffer overflow via vnc 
connection [rhel-7.3.z])





More information about the El-errata mailing list